CVE-2026-7168
MEDIUMcurl - Authentication Bypass via Proxy-Authorization Header Reuse
Title source: llmDescription
Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`.
References (4)
Core 4
Core References
Scores
CVSS v3
5.3
EPSS
0.0008
EPSS Percentile
23.2%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
yes
Technical Impact
partial
Details
CWE
CWE-294
Status
published
Products (50)
curl/curl
7.12.0
curl/curl
7.12.1
curl/curl
7.12.2
curl/curl
7.12.3
curl/curl
7.13.0
curl/curl
7.13.1
curl/curl
7.13.2
curl/curl
7.14.0
curl/curl
7.14.1
curl/curl
7.15.0
... and 40 more
Published
May 13, 2026
Tracked Since
May 13, 2026